Out of Bounds Write Vulnerability in Google Chrome for Android
CVE-2026-85050

9.6CRITICAL

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
3 September 2026

What is CVE-2026-85050?

An out of bounds write vulnerability exists in the WebGL component of Google Chrome for Android prior to version 152.0.7977.82. This flaw permits a remote attacker to execute arbitrary code outside of the browser's sandbox by crafting a malicious HTML page. Users of affected versions are advised to update their browsers to mitigate potential risks related to unauthorized code execution.

Affected Version(s)

Chrome 152.0.7977.82

References

CVSS V3.1

Score:
9.6
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.